Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
This update for java-17-openjdk fixes the following issues
- Upgrade to upstream tag jdk-17.0.20+8 (July 2026 CPU)
- CVE-2026-41254: Information disclosure or denial of service via integer overflow in CubeSize (bsc#1264994).
- CVE-2026-46917: partial denial of service via TLS (bsc#1272223).
- CVE-2026-46968: unauthorized creation, deletion or modification access to critical data (bsc#1272224).
- CVE-2026-47010: unauthorized update, insert or delete access (bsc#1272225).
- CVE-2026-47021: partial denial of service via multiple network protocols (bsc#1272227).
- CVE-2026-47027: partial denial of service via multiple network protocols (bsc#1272228).
- CVE-2026-47059: partial denial of service via multiple network protocols (bsc#1272235).
- CVE-2026-47063: unauthorized creation, deletion or modification access to critical data (bsc#1272236).
- CVE-2026-60147: unauthorized update, insert or delete access (bsc#1272237).
Patch instructions:
To install this openSUSE security update...
Read the Full Advisory- openSUSE Leap 16.0:
java-17-openjdk-17.0.20.0-160000.1.1
java-17-openjdk-demo-17.0.20.0-160000.1.1
java-17-openjdk-devel-17.0.20.0-160000.1.1
java-17-openjdk-headless-17.0.20.0-160000.1.1
java-17-openjdk-javadoc-17.0.20.0-160000.1.1
java-17-openjdk-jmods-17.0.20.0-160000.1.1
java-17-openjdk-src-17.0.20.0-160000.1.1
* bsc#1264994
* bsc#1272223
* bsc#1272224
* bsc#1272225
* bsc#1272227
* bsc#1272228
* bsc#1272235
* bsc#1272236
* bsc#1272237
References:
* https://www.suse.com/security/cve/CVE-2026-41254.html
* https://www.suse.com/security/cve/CVE-2026-46917.html
* https://www.suse.com/security/cve/CVE-2026-46968.html
* https://www.suse.com/security/cve/CVE-2026-47010.html
* https://www.suse.com/security/cve/CVE-2026-47021.html
* https://www.suse.com/security/cve/CVE-2026-47027.html
* https://www.suse.com/security/cve/CVE-2026-47059.html
* https://www.suse.com/security/cve/CVE-2026-47063.html
* https://www.suse.com/security/cve/CVE-2026-60147.html
Get the latest Linux and open source security news straight to your inbox.